CVE List

Id CVE No. Status Description Phase Votes Comments Actions
28175  CVE-2007-4818  Candidate  Multiple PHP remote file inclusion vulnerabilities in Txx CMS 0.2 allow remote attackers to execute arbitrary PHP code via a URL in the doc_root parameter to (1) addons/plugin.php, (2) addons/sidebar.php, (3) mail/index.php, or (4) mail/mailbox.php in modules/.  Assigned (20070911)  None (candidate not yet proposed)    View
93711  CVE-2016-6891  Candidate  MatrixSSL before 3.8.6 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted ASN.1 Bit Field primitive in an X.509 certificate.  Assigned (20160819)  None (candidate not yet proposed)    View
28431  CVE-2007-5074  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20070924)  None (candidate not yet proposed)    View
93967  CVE-2016-7147  Candidate  Cross-site scripting (XSS) vulnerability in the manage_findResult component in the search feature in Zope ZMI in Plone before 4.3.12 and 5.x before 5.0.7 allows remote attackers to inject arbitrary web script or HTML via vectors involving double quotes, as demonstrated by the obj_ids:tokens parameter. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-7140.  Assigned (20160905)  None (candidate not yet proposed)    View
28687  CVE-2007-5330  Candidate  The cadbd RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to (1) execute arbitrary code via stack-based buffer overflows in unspecified RPC procedures, and (2) trigger memory corruption related to the use of "handle" RPC arguments as pointers.  Assigned (20071010)  None (candidate not yet proposed)    View

Page 1252 of 20943, showing 5 records out of 104715 total, starting on record 6256, ending on 6260

Actions